8341 Total CVEs
3167 AI Analyzed
136 CISA KEV
1637 Critical
All Vendors
Showing 5501-5550 of 8341 CVEs Page 111 of 167
CVE-2025-32322
Analyzed
7.8
Unknown Multiple Products

In onCreate of MediaProjectionPermissionActivity

2025-09-04
CVE-2025-32321
7.8
Unknown Multiple Products

In isSafeIntent of AccountTypePreferenceLoader

2025-09-05
CVE-2025-32320
7.8
Unknown Multiple Products

In System UI, there is a possible way to view other users' images due to a confused deputy

2025-09-05
CVE-2025-3232
Analyzed
7.5
Unknown Multiple Products

A remote unauthenticated attacker may be able to bypass authentication by utilizing a specific API route to execute arbitrary OS commands

2025-12-26
CVE-2025-32318
Analyzed
8.8
Unknown Multiple Products

In Skia, there is a possible out of bounds write due to a heap buffer overflow

2025-09-05
CVE-2025-32312
7.8
Unknown Multiple Products

In createIntentsList of PackageParser

2025-09-05
CVE-2025-32304
Analyzed
8.1
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Mojoomla WPCHURCH allows PHP...

2026-01-07
CVE-2025-32303
Analyzed
9.3
Joomla Multiple Products

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Mojoomla WPCHURCH allows Blind SQL Injection.Thi...

2026-01-08
CVE-2025-32300
7.1
Zoom Multiple Products

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Digital zoom studio DZS Video Gallery allows Ref...

2026-01-08
CVE-2025-32297
8.5
Unknown Multiple Products

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in quantumcloud Simple Link Directory allows SQL In...

2025-07-06
CVE-2025-32288
7.5
HP Multiple Products

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in stmcan RT-Theme 18 | Extensio...

2025-08-14
CVE-2025-32283
8.8
Unknown Multiple Products

Deserialization of Untrusted Data vulnerability in designthemes Solar Energy solar allows Object Injection

2025-10-23
CVE-2025-32096
7.5
Pexip Multiple Products

Pexip Infinity 33

2025-12-26
CVE-2025-32095
7.5
Infinity Multiple Products

Pexip Infinity before 37

2025-12-26
CVE-2025-32091
8.2
Intel Multiple Products

Incorrect default permissions in some firmware for the Intel(R) Arc(TM) B-series GPUs within Ring 1: Device Drivers may allow an escalation of privile...

2025-11-13
CVE-2025-32089
Analyzed
8.8
Dell Multiple Products

A buffer overflow vulnerability exists in the CvManager_SBI functionality of Dell ControlVault3 prior to 5

2025-11-18
CVE-2025-32010
8.1
Tenda Multiple Products

A stack-based buffer overflow vulnerability exists in the Cloud API functionality of Tenda AC6 V5

2025-08-20
CVE-2025-31965
Analyzed
8.2
Control Multiple Products

Improper access restrictions in HCL BigFix Remote Control Server WebUI (versions 10

2025-07-29
CVE-2025-31955
7.6
HCL Multiple Products

HCL iAutomate is affected by a sensitive data exposure vulnerability

2025-07-25
CVE-2025-31953
7.1
HCL Multiple Products

HCL iAutomate includes hardcoded credentials which may result in potential exposure of confidential data if intercepted or accessed by unauthorized pa...

2025-07-25
CVE-2025-31952
7.1
HCL Multiple Products

HCL iAutomate is affected by an insufficient session expiration

2025-07-25
CVE-2025-31718
Analyzed
9.8
Unknown Multiple Products

In modem, there is a possible system crash due to improper input validation. This could lead to remote escalation of privilege with no additional exec...

2025-10-12
CVE-2025-31717
Analyzed
9.8
Unknown Multiple Products

In modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service with no additional execution...

2025-10-12
CVE-2025-31715
Analyzed
9.8
Unknown Multiple Products

In vowifi service, there is a possible command injection due to improper input validation. This could lead to remote escalation of privilege with no a...

2025-08-18
CVE-2025-31713
Analyzed
8.4
Unknown Multiple Products

In engineer mode service, there is a possible command injection due to improper input validation

2025-08-18
CVE-2025-31701
8.1
Unknown Multiple Products

A vulnerability has been found in Dahua products

2025-07-23
CVE-2025-31700
8.1
Unknown Multiple Products

A vulnerability has been found in Dahua products

2025-07-23
CVE-2025-31649
Analyzed
8.7
Dell Multiple Products

A hard-coded password vulnerability exists in the ControlVault WBDI Driver functionality of Dell ControlVault3 prior to 5

2025-11-18
CVE-2025-31643
8.8
Dasinfomedia WPCHURCH Multiple Products

Incorrect Privilege Assignment vulnerability in Dasinfomedia WPCHURCH allows Privilege Escalation

2026-01-08
CVE-2025-31642
7.1
Dasinfomedia WPCHURCH Multiple Products

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Dasinfomedia WPCHURCH allows Reflected XSS

2026-01-07
CVE-2025-31634
8.8
Unknown Multiple Products

Deserialization of Untrusted Data vulnerability in designthemes Insurance insurance allows Object Injection

2025-10-23
CVE-2025-31512
7.3
AlertEnterprise Multiple Products

An issue was discovered in AlertEnterprise Guardian 4

2025-07-23
CVE-2025-31511
7.3
AlertEnterprise Multiple Products

An issue was discovered in AlertEnterprise Guardian 4

2025-07-23
CVE-2025-31510
7.2
Unknown Multiple Products

In the portal in LemonLDAP::NG before 2

2026-01-18
CVE-2025-31427
Analyzed
7.1
WordPress Multiple Products

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in designthemes Invico - WordPress Consulting Busin...

2025-07-16
CVE-2025-31425
7.5
Unknown Multiple Products

Missing Authorization vulnerability in kamleshyadav WP Lead Capturing Pages allows Exploiting Incorrectly Configured Access Control Security Levels

2025-08-14
CVE-2025-31422
Analyzed
8.8
WordPress Multiple Products

Deserialization of Untrusted Data vulnerability in designthemes Visual Art | Gallery WordPress Theme allows Object Injection

2025-07-16
CVE-2025-31361
Analyzed
8.7
Dell Multiple Products

A privilege escalation vulnerability exists in the ControlVault WBDI Driver WBIO_USH_ADD_RECORD functionality of Dell ControlVault3 prior to 5

2025-11-18
CVE-2025-31355
7.2
Tenda Multiple Products

A firmware update vulnerability exists in the Firmware Signature Validation functionality of Tenda AC6 V5

2025-08-20
CVE-2025-31281
9.1
Apple Multiple Products

An input validation issue was addressed with improved memory handling. This issue is fixed in visionOS 2.6, tvOS 18.6, macOS Sequoia 15.6, iOS 18.6 an...

2025-07-31
CVE-2025-31280
7.8
Unknown Multiple Products

A memory corruption issue was addressed with improved validation

2025-07-31
CVE-2025-3128
9.8
Unknown Multiple Products

A remote unauthenticated attacker who has bypassed authentication could execute arbitrary OS commands to disclose, tamper with, destroy or delete in...

2025-08-21
CVE-2025-31279
Analyzed
9.8
Apple Multiple Products

A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15.6, iPadOS 17.7.9, macOS Sonoma 14.7.7, macOS V...

2025-07-31
CVE-2025-31278
8.8
Unknown Multiple Products

The issue was addressed with improved memory handling

2025-07-31
CVE-2025-31277
8.8
Unknown Multiple Products

The issue was addressed with improved memory handling

2025-07-31
CVE-2025-31273
8.8
Unknown Multiple Products

The issue was addressed with improved memory handling

2025-07-31
CVE-2025-31271
7.5
Unknown Multiple Products

This issue was addressed through improved state management

2025-09-16
CVE-2025-31243
7.8
Unknown Multiple Products

A permissions issue was addressed with additional restrictions

2025-07-31
CVE-2025-31229
9.1
Apple Multiple Products

A logic issue was addressed with improved checks. This issue is fixed in iOS 18.6 and iPadOS 18.6. Passcode may be read aloud by VoiceOver.

2025-07-31
CVE-2025-31125
KEV
9.5
Vite Vitejs

Vite Vitejs Improper Access Control Vulnerability - Active in CISA KEV catalog.

2026-01-23